strongSwan VPN Client

By strongSwan Project

strongSwan VPN Client

Official Android 4 port of the favored strongSwan VPN solution.

# FEATURES AND LIMITATIONS #

* Uses the VpnService API featured by Android 4 . Devices by some producers seem to lack assist for this - strongSwan VPN Client will not work on these devices!

* Uses the IKEv2 key trade protocol (IKEv1 just isn't supported)

* Uses IPsec for knowledge site visitors (L2TP just isn't supported)

* Full assist for modified connectivity and mobility through MOBIKE (or reauthentication)

* Supports username/password EAP authentication (namely EAP-MSCHAPv2, EAP-MD5 and EAP-GTC) in addition to RSA/ECDSA personal key/certificate authentication to authenticate users, EAP-TLS with client certificates can be supported

* Combined RSA/ECDSA and EAP authentication is supported by using two authentication rounds as defined in RFC 4739

* VPN server certificates are verified against the CA certificates pre-installed or installed by the person on the system. The CA or server certificates used to authenticate the server can be imported immediately into the app.

* IKEv2 fragmentation is supported if the VPN server helps it (strongSwan does so since 5.2.1)

* Split-tunneling permits sending only sure site visitors via the VPN and/or excluding specific traffic from it

* Per-app VPN allows limiting the VPN connection to specific apps, or exclude them from utilizing it

* The IPsec implementation presently supports the AES-CBC, AES-GCM, ChaCha20/Poly1305 and SHA1/SHA2 algorithms

* Passwords are currently stored as cleartext in the database (only if stored with a profile)

* VPN profiles could also be imported from files (this is the one reason why the app requests android.permission.READ_EXTERNAL_STORAGE)

Details and a changelog can be discovered on our wiki: https://wiki.strongswan.org/projects/strongswan/wiki/AndroidVPNClient

# EXAMPLE SERVER CONFIGURATION #

Example server configurations may be discovered on our wiki: https://wiki.strongswan.org/projects/strongswan/wiki/AndroidVPNClient#Server-Configuration

Please notice that the host identify (or IP address) configured with a VPN profile within the app *must be* contained in the server certificate as subjectAltName extension.

# FEEDBACK #

Please post bug reports and feature requests on our wiki: https://wiki.strongswan.org/projects/strongswan/issues

If you do so, please embrace information about your system (manufacturer, mannequin, OS model etc.).

The log file written by the key trade service could be despatched directly from inside the application.

Similar Apps

Description:

The F5 Access for Android app (formerly generally known as the BIG-IP Edge Client for Android) from F5 Networks secures and accelerates mobile system access to enterprise networks and purposes using VPN and optimization technologies. Secure VPN entry is offered as a half of an enterprise deplo...

Description:

Hi VPN is the best VPN UNLIMITED excessive velocity VPN Proxy on Android. It is extremely safe with military-grade encryption so you can safely navigate public, business and faculty networks. Unblock inaccessible and censored websites.SupportIf you have any problem, we shall be...

Description:

The official app for managing WireGuard VPN tunnels.

Description:

With this app you will able to connect to any OpenVPN (TUN/TAP), SSTP, WireGuard, OpenConnect (ocserv) servers and Cisco AnyConnect SSL gateways.The basic OpenVPN function is free for all. To use different protocols and options you need to purchase a subscription.There is not wan...

Description:

Surf the Internet freely, securely and anonymouslyYou are being spied on. Governments, companies, and criminals all need your internet browsing information. Protect your privateness with FinchVPN.NOTICE:

Comments